Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrmq-qg76-wcr7

Опубликовано: 03 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability. This can allow autocomplete on password fields may lead to unintended storage or disclosure of sensitive credentials, potentially increasing the risk of unauthorized access. This issue affects AION: 2.0.

HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability. This can allow autocomplete on password fields may lead to unintended storage or disclosure of sensitive credentials, potentially increasing the risk of unauthorized access. This issue affects AION: 2.0.

EPSS

Процентиль: 10%
0.00034
Низкий

3.7 Low

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 3.7
nvd
5 дней назад

HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability. This can allow autocomplete on password fields may lead to unintended storage or disclosure of sensitive credentials, potentially increasing the risk of unauthorized access. This issue affects AION: 2.0.

EPSS

Процентиль: 10%
0.00034
Низкий

3.7 Low

CVSS3

Дефекты

CWE-522